CVE-2021-20993

In multiple managed switches by WAGO in different versions the activated directory listing provides an attacker with the index of the resources located inside the directory.
References
Link Resource
https://cert.vde.com/en-us/advisories/vde-2021-013 Third Party Advisory
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:wago:0852-0303_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:0852-0303:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:wago:0852-1305_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:0852-1305:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:wago:0852-1505_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:0852-1505:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:wago:0852-1305\/000-001_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:0852-1305\/000-001:-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
cpe:2.3:o:wago:0852-1505\/000-001_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:0852-1505\/000-001:-:*:*:*:*:*:*:*

Information

Published : 2021-05-13 07:15

Updated : 2021-05-20 12:47


NVD link : CVE-2021-20993

Mitre link : CVE-2021-20993


JSON object : View

CWE
CWE-200

Exposure of Sensitive Information to an Unauthorized Actor

Advertisement

dedicated server usa

Products Affected

wago

  • 0852-1505\/000-001_firmware
  • 0852-0303
  • 0852-1305\/000-001
  • 0852-1505_firmware
  • 0852-1305
  • 0852-1505
  • 0852-1505\/000-001
  • 0852-0303_firmware
  • 0852-1305_firmware
  • 0852-1305\/000-001_firmware